i || o
Hey, You, Get Off of My Cloud

Using the Amazon EC2 service as a case study, we show that it is possible to map the internal cloud infrastructure, identify where a particular target VM is likely to reside, and then instantiate new VMs until one is placed co-resident with the target. We explore how such placement can then be used to mount cross-VM side-channel attacks to extract information from a target VM on the same machine.

8/25/09 — 5:25pm
 
Previous post Next post
Archive RSS
This website uses the NOTATIONS theme by Ben Delaney, and is powered by TUMBLR.